PT-2016-4833 · Cisco · Cisco Asyncos

Publicado

2016-10-28

·

Atualizado

2017-07-29

·

CVE-2016-1486

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Cisco AsyncOS Software versions 9.7.1 through 9.7.1-066 Cisco AsyncOS Software versions 9.7.2 prior to 9.7.2-047
Description A denial of service (DoS) condition could be triggered by an unauthenticated, remote attacker due to a vulnerability in the email attachment scanning functionality of the Advanced Malware Protection (AMP) feature. This would cause the affected device to stop scanning and forwarding email messages.
Recommendations For versions 9.7.1 through 9.7.1-066, update to version 9.7.1-207 or later. For versions 9.7.2 prior to 9.7.2-047, update to version 9.7.2-047 or later. For all affected versions, ensure the AMP feature is properly configured and consider temporarily disabling the email attachment scanning functionality until the update is applied.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-1486

Produtos afetados

Cisco Asyncos